Security skills

16,914 tagged Security, measured the same way as everything else here.

Browse within: cybersecurity 485bug-bounty 277agent 229generative-ai 179LangChain 176hacking 175autonomous-pentesting 135cloud-security 121skills 121claude-ai 118redteam 113LLM 108security-audit 105cors-exploitation 88

codebase-auditor

961

micheleangioni/agent-skills

Skill Claude CodeCodex

Use this skill when the user asks for a review, audit, evaluation or analysis of a codebase, to identify bugs, security vulnerabilities, outdated dependencies or runtimes, performance bottlenecks, or code quality concerns.

not rated 2 3mo ago A 50 tokens

dependency-hygiene

962

vincenzodomina/ai

Skill Claude CodeCodex

Security-first dependency hygiene for Node and Python projects. Use when auditing dependencies, verifying automated dependency updates, reviewing or editing manifests and lockfiles, triaging vulnerability findings, handling supply chain incidents, or maintaining long-term dependency safety practices.

not rated 2 1mo ago A 51 tokens

rust-security-auditor

963

ctresb/hermes-security-auditor

Skill Claude CodeCodex

Use when auditing Rust backend code (Axum/Actix/Rocket/Tower) with PostgreSQL or similar relational stores; async runtimes, SQLx/Diesel/SeaORM, OAuth/OIDC, sessions, multi-tenant/RLS, connection pooling, migrations, crypto/secrets, dependency supply chain, unsafe boundaries, CI/CD, containers/IaC, GraphQL/gRPC…

not rated 2 2mo ago B 131 tokens original MIT

halay08/fullstack-agent-skills

Skill Claude CodeCodex

Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabilities.

not rated 2 7mo ago A 29 tokens

lazarus-mode

965

kabudu/engineering-agent-skills

Skill Codex

Use for expert engineering judgment, "X mode", seasoned/staff/principal standards, robust architecture, security/performance/reliability/scalability scrutiny, optimization review, rigorous implementation/release discipline, or implementation with implement-release-flow. A rigor overlay for design, testing, reviews…

not rated 2 changed 5d ago A 76 tokens original MIT

harsh-code-reviewer

966

Takayio/ai-agent-skills

Skill Claude CodeCodex

A strict code-review helper focused on security, performance, and readability, meaning how safely, efficiently, and clearly code works.

not rated 2 7mo ago A 45 tokens

vet-agent

967

bnb-attestation-service/agent_scan_skills

Skill Claude CodeCodex

Assess whether a specific ERC-8004 agent is trustworthy and capable, using the Agent Scan backend. Use this whenever the user wants to evaluate, vet, or do due diligence on an agent before trusting/hiring it. Triggers: "is this agent reliable", "vet this agent", "should I trust agent X", "due diligence on agent"…

not rated 2 2mo ago A 96 tokens

traceaudit-gov

968

YouYou-lj/GovSafeAgent

Skill Claude CodeCodex needs its repo

An audit tool for recording versioned agent events, linking them with hashes and HMAC signatures, and protecting stored data through redaction or summaries. HMAC is a way to detect changes using a secret key.

not rated 2 2d ago A 0 tokens original Apache-2.0

arush15june/cyber-sales-agent-skills

Skill Claude CodeCodex

Use when you are given a company name, domain, or short description and need to determine which cybersecurity regulations, compliance frameworks, and data-protection laws apply to it — and which of those obligations mandate security testing, VAPT, red-teaming, or continuous control validation.

not rated 2 2mo ago A 62 tokens

status

971

rogue-security/rogue-plugins

Skill Claude CodeCodex

Check Rogue Security AIDR connection status, active rulesets, and configuration for Google Antigravity.

not rated 2 yesterday A 22 tokens

ai-agent-review

972

agilekalaf/Cybersecurity-skills

Skill Claude CodeCodex

Evaluate AI agent configurations, plugin skill files, MCP server connections, and tool permissions for security risks. Use this skill whenever the user mentions scanning plugins, reviewing agent security, auditing AI tools, evaluating MCP configurations, checking skill files for vulnerabilities, prompt injection…

not rated 2 6mo ago A 128 tokens

erp-security-analyst

973

SYNTAAI/sap-security-mcp

Skill Claude CodeCodex

Guides Claude to act as an expert ERP security analyst using SyntaAI ERP Security MCP tools. Enables comprehensive SAP security audits, compliance assessments, and user access reviews through natural conversation.

not rated 2 22d ago A 0 tokens original Apache-2.0

guard-scanner

974

koatora20/guard-scanner

Skill Claude CodeCodex

Security scanner and runtime guard for OpenClaw skills, MCP servers, and AI agent workflows. Detects prompt injection, identity hijacking, memory poisoning, A2A contagion, secret leaks, supply-chain abuse, and dangerous tool calls with 364 static threat patterns across 35 threat categories plus 27 runtime checks. Use…

not rated 2 2mo ago A 185 tokens original MIT

compliance-audit

975

mightbesaad/audit-event-mcp

Skill Claude CodeCodex

Run an 8-axis GDPR/AI-Act compliance audit against an @kajaril/audit-event-mcp event store.

not rated 2 2mo ago A 0 tokens original MIT

psamvault-mcp

976

psam-717/psamvault-mcp

Skill Claude CodeCodex

Use psamvault MCP server: credential vault, browser login, API key injection, .env secret protection. MCP tools keep secrets out of the agent's context window.

not rated 2 changed today A 40 tokens original MIT

mcp-surveys-cli

977

EzzySoft/mcp-surveys

Skill Claude CodeCodex

Use when an agent can run shell commands and needs secure short-lived human surveys. Secure E2EE via uvx is the default; plaintext is explicit opt-in only.

not rated 2 1mo ago A 40 tokens original MIT

container-audit

978

olaservo/dangerous-skills-mcp

Skill Claude Code

Audit local Docker images and running containers for hardening issues before deploy — privileged flags, root users, stale base images, missing resource limits. Use for pre-deploy container review.

not rated 2 22d ago A 40 tokens original MIT

mfa-servicenow-skills

979

jshsakura/mfa-servicenow-mcp

Skill Claude CodeCodex

Portal-specialized ServiceNow skills — LLM execution blueprints with safety gates, sub-agent delegation, and context optimization.

not rated 2 yesterday A 31 tokens

xtofuub/frida-mcp-server

Skill Claude CodeCodex

Reverse engineers iOS applications using Frida dynamic instrumentation to understand internal logic, extract encryption keys, bypass security controls, and discover hidden functionality without source code access. Use when performing authorized iOS penetration testing, analyzing proprietary protocols, understanding…

not rated 2 2mo ago B 97 tokens original MIT

protect-agent-action

982

JesseGdotIO/hermesplant-mcp-server

Skill Codex

Gate consequential shell, Git, SQL, package, deployment, infrastructure, MCP, wallet, or x402 actions with Hermes Plant Agent Action Safety. Use before executing commands that mutate data, production, money, infrastructure, or shared history; require authorized external disclosure and route unmatched consequential…

not rated 2 1mo ago A 69 tokens original MIT

codeql

983

ilteoood/harness

Skill Claude CodeCodex

Comprehensive guide for setting up and configuring CodeQL code scanning via GitHub Actions workflows and the CodeQL CLI. This skill should be used when users need help with code scanning configuration, CodeQL workflow files, CodeQL CLI commands, SARIF output, security analysis setup, or troubleshooting CodeQL analysis.

not rated 2 4d ago A Socket: passSnyk: pass 64 tokens

m2m-sentinel

984

M2M-Sentinel/m2m-sentinel-sdk

Skill Claude CodeCodex

Deterministic EVM bytecode capability observations, EIP-1967 proxy resolution, gas recommendations, and sourced telemetry for autonomous applications on Base (Chain ID 8453).

not rated 2 +1 5d ago A 42 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: